CWE-125
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
9,159 vulnerabilities with CWE-125
CVE-2026-15003
MEDIUM
Binutils: gnu binutils: heap-buffer-overflow in linker leads to information disclosure and denial of service
CVSS 5.6
CVE-2026-17512
LOW
ggml-org whisper.cpp log_mel_spectrogram out-of-bounds
CVSS 3.3
CVE-2026-58662
CRITICAL
Apache Thrift: C++ THeaderTransport::readString() info-header length bounds bypass
CVSS 9.1
CVE-2026-58023
CRITICAL
Apache Thrift: c_glib heap out-of-bounds read in transport leftover-bytes path
CVSS 9.1
CVE-2026-66337
MEDIUM
Libsoup: libsoup: heap buffer over-read via integer underflow in soup_filter_input_stream_read_until()
CVSS 6.5
CVE-2026-66034
HIGH
libssh2 Heap Out-of-Bounds Read via publickey subsystem
CVSS 7.5
CVE-2026-66033
HIGH
libssh2 Integer Underflow DoS via AES-GCM Cipher Negotiation
CVSS 7.5
CVE-2026-55732
HIGH
Loytec LINX firmware: Out-of-bounds Read in BACnet packet parsing (bacdt_datetime_to_tod)
CVE-2026-56391
MEDIUM
Out‑of‑bounds Read in GNU coreutils
CVE-2026-16002
HIGH
Out-of-bounds Read in MZ Automation lib60870
CVSS 8.2
CVE-2026-65918
HIGH
PyTorch torchvision GIF Decoder Out-of-bounds Heap Read
CVSS 7.1
CVE-2026-16768
MEDIUM
Gdk-pixbuf: out-of-bounds read in ico parser
CVSS 5.3
CVE-2026-43820
HIGH
Apple Swift-nio-ssl < 2.37.2 - Out-of-Bounds Access
CVSS 7.7
CVE-2026-13077
HIGH
Out-of-Bounds Heap Read in BSON CodeWScope Element Parsing via Malformed BSONColumn Data
CVSS 7.1
CVE-2026-64833
HIGH
FFmpeg 0.7.1 - 8.1.2 Out-of-Bounds Read via S/PDIF Muxer spdifenc.c
CVSS 7.1
CVE-2026-48029
HIGH
libheif: heap OOB read in ImageItem_Grid::decode_grid_tile via irot-induced tile-coordinate underflow
CVSS 7.1
CVE-2026-16473
MEDIUM
Sbc: sbc: heap out-of-bounds read via crafted sbc audio frame
CVSS 4.3
CVE-2026-16419
CRITICAL
Google Chrome - Out-of-Bounds Access
CVSS 9.6
CVE-2026-47254
MEDIUM
libheif Has Heap Buffer Overflow in `Track::get_next_sample_raw_data()` -- OOB Chunk Vector Access
CVSS 6.1
CVE-2026-47251
MEDIUM
libheif has an incomplete fix for CVE-2026-3949: integer overflow bypass in vvdec_push_data2
CVSS 6.1
CVE-2026-10680
HIGH
Out-of-bounds access in Zephyr BR/EDR L2CAP configuration request handling via `uint16_t` length underflow
CVSS 7.6
CVE-2026-45383
MEDIUM
libde265 has a heap buffer overflow (OOB read) in decode_slice_unit_WPP() via out-of-bounds CtbAddrRStoTS access — libde265 <= v1.0.18
CVE-2026-45382
MEDIUM
libde265 has a heap-buffer-overflow READ in decode_slice_unit_tiles via unvalidated PPS tile geometry
CVE-2026-59147
CRITICAL
Data::DisjointSet::Shared versions before 0.02 for Perl allow out-of-bounds reads and writes via an unvalidated parent index in dsu_find
CVSS 9.8
CVE-2026-59146
HIGH
Data::SpatialHash::Shared < 0.02 - Out-of-Bounds Access
CVSS 7.8
Details
Vulnerabilities
9,159